Hi there,
do you have a strategy how to identify spam messages from big companies like Amazonses, Google or MS (Outlook).
Every now and then spam mails will slip through Proxmox and I'm not sure how to configure this properly.
DNSBL queries will not work as their IPs are probably white listed.
Blocking their IP ranges or whole domains is also out of question.
With SA rules based on keywords I can probably improve the detection for the typical phishing mails (Netflix, Disney+ etc.) and also guys who want to improve my website or sell PCBs, but what about the rest ?
Any hint or strategy will be highly appreciated.
Thanks!
				
			do you have a strategy how to identify spam messages from big companies like Amazonses, Google or MS (Outlook).
Every now and then spam mails will slip through Proxmox and I'm not sure how to configure this properly.
DNSBL queries will not work as their IPs are probably white listed.
Blocking their IP ranges or whole domains is also out of question.
With SA rules based on keywords I can probably improve the detection for the typical phishing mails (Netflix, Disney+ etc.) and also guys who want to improve my website or sell PCBs, but what about the rest ?
Any hint or strategy will be highly appreciated.
Thanks!
 
	